Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
UTT HiPER 1250GW getOneApConfTempEntry strcpy stack-based overflow
Vulnerability Description
A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907-180535. The impacted element is the function strcpy of the file /goform/getOneApConfTempEntry. The manipulation of the argument tempName leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
UTT HiPER 1250GW 缓冲区错误漏洞
Vulnerability Description
UTT hiper 1250gw是中国UTT公司的一款高性能宽带路由器。 UTT HiPER 1250GW v3.2.7-210907-180535及之前版本存在缓冲区错误漏洞,该漏洞源于文件/goform/getOneApConfTempEntry中函数strcpy对参数tempName的操作,可能导致栈缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A